Patch "lib/crypto: riscv/chacha: Avoid s0/fp register" has been added to the 6.12-stable tree
gregkh at linuxfoundation.org
gregkh at linuxfoundation.org
Mon Jan 5 06:19:27 PST 2026
This is a note to let you know that I've just added the patch titled
lib/crypto: riscv/chacha: Avoid s0/fp register
to the 6.12-stable tree which can be found at:
http://www.kernel.org/git/?p=linux/kernel/git/stable/stable-queue.git;a=summary
The filename of the patch is:
lib-crypto-riscv-chacha-avoid-s0-fp-register.patch
and it can be found in the queue-6.12 subdirectory.
If you, or anyone else, feels it should not be added to the stable tree,
please let <stable at vger.kernel.org> know about it.
>From stable+bounces-204145-greg=kroah.com at vger.kernel.org Mon Dec 29 23:39:13 2025
From: Eric Biggers <ebiggers at kernel.org>
Date: Mon, 29 Dec 2025 14:37:29 -0800
Subject: lib/crypto: riscv/chacha: Avoid s0/fp register
To: stable at vger.kernel.org
Cc: linux-crypto at vger.kernel.org, linux-riscv at lists.infradead.org, Vivian Wang <wangruikang at iscas.ac.cn>, Eric Biggers <ebiggers at kernel.org>
Message-ID: <20251229223729.99861-1-ebiggers at kernel.org>
From: Vivian Wang <wangruikang at iscas.ac.cn>
commit 43169328c7b4623b54b7713ec68479cebda5465f upstream.
In chacha_zvkb, avoid using the s0 register, which is the frame pointer,
by reallocating KEY0 to t5. This makes stack traces available if e.g. a
crash happens in chacha_zvkb.
No frame pointer maintenance is otherwise required since this is a leaf
function.
Signed-off-by: Vivian Wang <wangruikang at iscas.ac.cn>
Fixes: bb54668837a0 ("crypto: riscv - add vector crypto accelerated ChaCha20")
Cc: stable at vger.kernel.org
Link: https://lore.kernel.org/r/20251202-riscv-chacha_zvkb-fp-v2-1-7bd00098c9dc@iscas.ac.cn
Signed-off-by: Eric Biggers <ebiggers at kernel.org>
Signed-off-by: Greg Kroah-Hartman <gregkh at linuxfoundation.org>
---
arch/riscv/crypto/chacha-riscv64-zvkb.S | 5 ++---
1 file changed, 2 insertions(+), 3 deletions(-)
--- a/arch/riscv/crypto/chacha-riscv64-zvkb.S
+++ b/arch/riscv/crypto/chacha-riscv64-zvkb.S
@@ -60,7 +60,8 @@
#define VL t2
#define STRIDE t3
#define NROUNDS t4
-#define KEY0 s0
+#define KEY0 t5
+// Avoid s0/fp to allow for unwinding
#define KEY1 s1
#define KEY2 s2
#define KEY3 s3
@@ -141,7 +142,6 @@ SYM_FUNC_START(chacha20_zvkb)
srli LEN, LEN, 6 // Bytes to blocks
addi sp, sp, -96
- sd s0, 0(sp)
sd s1, 8(sp)
sd s2, 16(sp)
sd s3, 24(sp)
@@ -277,7 +277,6 @@ SYM_FUNC_START(chacha20_zvkb)
add INP, INP, TMP
bnez LEN, .Lblock_loop
- ld s0, 0(sp)
ld s1, 8(sp)
ld s2, 16(sp)
ld s3, 24(sp)
Patches currently in stable-queue which might be from ebiggers at kernel.org are
queue-6.12/lib-crypto-riscv-chacha-avoid-s0-fp-register.patch
queue-6.12/lib-crypto-x86-blake2s-fix-32-bit-arg-treated-as-64-bit.patch
More information about the linux-riscv
mailing list